We'll create fresh WordPress site with Block wp-login installed. You have 20 minutes to test the plugin after that site we'll be deleted.
This plugin does the following:
When installed your server will return “403 Forbidden“ when attempts are made to access the default wp-login.php file. This has two benefits; it prevents hackers from using brute force methods to hack your website and it reduces the load on the server when such brute force attacks are launched on your site as WordPress isn’t run at all.
Please note, this plugin uses .htaccess so is only compatible with Apache web servers, it is not compatible with Nginx web servers.